2024 CVE Vulnerabilities

39,239 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-43144CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in StylemixThemes Cos...
CVE-2024-43132CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WPWeb Elite Docket...
CVE-2024-39658HIGH7.2Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Salon Booking Syst...
CVE-2024-39653CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in E4J s.R.L. VikRent...
CVE-2024-39638HIGH8.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Roundup WP Registr...
CVE-2024-39622CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in CridioStudio Listi...
CVE-2024-39620HIGH8.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in CridioStudio Listi...
CVE-2024-38795CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in CridioStudio Listi...
CVE-2024-38793HIGH8.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in PriceListo Best Re...
CVE-2024-8302CRITICAL9.8A vulnerability was found in dingfanzu CMS up to 29d67d9044f6f93378e6eb6ff92272217ff7225c. It has been rated as critical...
CVE-2024-5057CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Easy Digital Downl...
CVE-2024-38693HIGH7.2Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in weDevs WP User Fro...
CVE-2024-1056MEDIUM5.4The FunnelKit Funnel Builder Pro plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'allow_iframe...
CVE-2024-8301CRITICAL9.8A vulnerability was found in dingfanzu CMS up to 29d67d9044f6f93378e6eb6ff92272217ff7225c. It has been declared as criti...
CVE-2024-8297HIGH7.5A vulnerability was found in kitsada8621 Digital Library Management System 1.0. It has been classified as problematic. A...
CVE-2024-8296CRITICAL9.8A vulnerability was found in FeehiCMS up to 2.1.1 and classified as critical. This issue affects the function insert of ...
CVE-2024-3679HIGH7.5The Premium SEO Pack – WP SEO Plugin plugin for WordPress is vulnerable to Sensitive Information Exposure in all version...
CVE-2024-2541HIGH7.5The Popup Builder plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and includ...
CVE-2024-1384MEDIUM5.4The Premium Portfolio Features for Phlox theme plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
CVE-2024-8295CRITICAL9.8A vulnerability has been found in FeehiCMS up to 2.1.1 and classified as critical. This vulnerability affects the functi...
CVE-2024-8294CRITICAL9.8A vulnerability, which was classified as critical, was found in FeehiCMS up to 2.1.1. This affects the function update o...
CVE-2024-7895MEDIUM5.4The Beaver Builder – WordPress Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘t...
CVE-2024-7856HIGH8.1The MP3 Audio Player – Music Player, Podcast Player & Radio by Sonaar plugin for WordPress is vulnerable to unauthorized...
CVE-2024-7607HIGH8.8The Front End Users plugin for WordPress is vulnerable to time-based SQL Injection via the ‘order’ parameter in all vers...
CVE-2024-7606MEDIUM5.4The Front End Users plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'user-search' sho...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now